Wekan logo

Wekan

Open source kanban board application built with Meteor

Alternative to: trello


About Versions (307)

v11.99

2026-09-24

In short

Developer tooling updates Rsdoctor to fix source disclosure through its report server. Dependency updates work again with published Meteor Node stubs and restored Dependabot coverage for build tools.

Security

Patch Rsdoctor and restore dependency updates. Thanks to xet7.

Update Rsdoctor from 1.5.9 to 1.6.4 for CVE-2026-61782. The affected report server can expose source and build metadata when using the development bundle visualizer; it is not enabled in production builds.

Replace the deleted local meteor-node-stubs reference with published 1.2.30. The missing local manifest prevented Dependabot from preparing security updates. Remove the obsolete Meteor 3.5 build-tool exclusions now that WeKan uses Meteor 3.6 and Rspack 2.

Five dependency tests pass, including tracked local manifests, patched versions and update configuration. npm install and npm ci dry-run succeed; Rspack 2.2.0 compiles a smoke fixture with Rsdoctor 1.6.4. Dependabot YAML parses. A full Meteor build and hosted Dependabot run were not performed.

Translations

No translation updates.

Thanks to above GitHub users for their contributions and translators for their translations.

More details at ChangeLog